VendorsSolarwindsorion_platformany version
Vulnerabilities

Solarwinds Orion Platform 2016.1 Hotfix 1 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

33CVEs
CVE-2021-25274
The Collector Service in SolarWinds Orion Platform before 2020.2.4 uses MSMQ (Microsoft Message Queue) and doesn't set permissions on its private queues. As a result, remote unauthenticated clients can send messages to TCP port 1801 that the Collector Service will process. Additionally, upon processing of such messages, the service deserializes them in insecure manner, allowing remote arbitrary code execution as LocalSystem.
Published 2021-02-03 · Modified
10.0EPSS 0.364
CVE-2019-9546
SolarWinds Orion Platform before 2018.4 Hotfix 2 allows privilege escalation through the RabbitMQ service.
Published 2019-03-01 · Modified
9.8EPSS 0.028
CVE-2021-35222
Resource.aspx Reflected Cross-Site Scripting Vulnerability
Published 2021-08-31 · Modified
9.6EPSS 0.026
CVE-2021-35213
Orion User setting Improper Access Control Privilege Escalation Vulnerability
Published 2021-08-31 · Modified
9.0EPSS 0.034
CVE-2020-13169
Stored XSS (Cross-Site Scripting) exists in the SolarWinds Orion Platform before before 2020.2.1 on multiple forms and pages. This vulnerability may lead to the Information Disclosure and Escalation of Privileges (takeover of administrator account).
Published 2020-09-17 · Modified
9.0EPSS 0.022
CVE-2021-35218
Chart Endpoint Deserialization of Untrusted Data Remote Code Execution Vulnerability
Published 2021-09-01 · Modified
8.9EPSS 0.764
CVE-2021-35215
ActionPluginBaseView Deserialization of Untrusted Data RCE
Published 2021-09-01 · Modified
8.9EPSS 0.697
CVE-2022-36958
SolarWinds Platform Deserialization of Untrusted Data
Published 2022-10-20 · Modified
8.8EPSS 0.815
CVE-2022-36961
Orion Platform SQL Injection Privilege Escalation Vulnerability
Published 2022-09-30 · Modified
8.8EPSS 0.742
CVE-2022-36964
SolarWinds Platform Deserialization of Untrusted Data
Published 2022-11-29 · Modified
8.8EPSS 0.168
CVE-2021-35234
Exposed Dangerous Functions - Privileged Escalation
Published 2021-12-20 · Modified
8.8EPSS 0.028
CVE-2022-36960
SolarWinds Platform Improper Input Validation
Published 2022-11-29 · Modified
8.8EPSS 0.009
CVE-2021-35244
Unrestricted File Upload Causing Remote Code Execution: Orion Platform 2020.2.6
Published 2021-12-20 · Modified
8.5EPSS 0.058
CVE-2021-35220
EmailWebPage Command Injection RCE
Published 2021-08-31 · Modified
8.1EPSS 0.025
CVE-2021-35221
ImportAlert Improper Access Control Tampering Vulnerability
Published 2021-08-31 · Modified
8.1EPSS 0.020
CVE-2021-25275
SolarWinds Orion Platform before 2020.2.4, as used by various SolarWinds products, installs and uses a SQL Server backend, and stores database credentials to access this backend in a file readable by unprivileged users. As a result, any user having access to the filesystem can read database login details from that file, including the login name and its associated password. Then, the credentials can be used to get database owner access to the SWNetPerfMon.DB database. This gives access to the data collected by SolarWinds applications, and leads to admin access to the applications by inserting or changing authentication data stored in the Accounts table of the database.
Published 2021-02-03 · Modified
7.8EPSS 0.006
CVE-2022-47505
SolarWinds Platform Local Privilege Escalation Vulnerability
Published 2023-04-21 · Modified
7.8EPSS 0.002
CVE-2021-35239
Stored XSS in Maps text box hyperlink Vulnerability
Published 2021-08-31 · Modified
7.5EPSS 0.010
CVE-2022-38108
SolarWinds Platform Deserialization of Untrusted Data
Published 2022-10-20 · Modified
7.2EPSS 0.689
CVE-2022-36957
SolarWinds Platform Deserialization of Untrusted Data
Published 2022-10-20 · Modified
7.2EPSS 0.128
CVE-2022-36962
SolarWinds Platform Command Injection
Published 2022-11-29 · Modified
7.2EPSS 0.093
CVE-2022-36963
SolarWinds Platform Deserialization of Untrusted Data Vulnerability
Published 2023-04-21 · Modified
7.2EPSS 0.082
CVE-2023-23845
SolarWinds Platform Exposed Dangerous Method Vulnerability
Published 2023-09-13 · Modified
7.2EPSS 0.054
CVE-2023-23840
SolarWinds Platform Exposed Dangerous Method Vulnerability
Published 2023-09-13 · Modified
7.2EPSS 0.054
CVE-2021-35248
Unrestricted access to Orion.UserSettings SWIS entity for low-privilege users
Published 2021-12-20 · Modified
6.8EPSS 0.009
CVE-2021-35240
Stored XSS via Help Server settings
Published 2021-08-31 · Modified
6.5EPSS 0.011
CVE-2022-47509
SolarWinds Platform Incorrect Input Neutralization Vulnerability
Published 2023-04-21 · Modified
6.1EPSS 0.005
CVE-2021-35219
ExportToPdfCmd Arbitrary File Read Information Disclosure Vulnerability
Published 2021-08-31 · Modified
6.0EPSS 0.008
CVE-2021-28674
The node management page in SolarWinds Orion Platform before 2020.2.5 HF1 allows an attacker to create or delete a node (outside of the attacker's perimeter) via an account with write permissions. This occurs because node IDs are predictable (with incrementing numbers) and the access control on Services/NodeManagement.asmx/DeleteObjNow is incorrect. To exploit this, an attacker must be authenticated and must have node management rights associated with at least one valid group on the platform.
Published 2021-07-27 · Modified
5.5EPSS 0.009
CVE-2022-36966
Insecure Direct Object Reference Vulnerability: Orion Platform 2020.2.6
Published 2022-10-20 · Modified
5.4EPSS 0.004
CVE-2021-3109
The custom menu item options page in SolarWinds Orion Platform before 2020.2.5 allows Reverse Tabnabbing in the context of an administrator account.
Published 2021-03-26 · Modified
4.9EPSS 0.008
CVE-2021-35238
Stored XSS through URL POST parameter in CreateExternalWebsite Vulnerability
Published 2021-09-01 · Modified
4.8EPSS 0.011
CVE-2020-35856
SolarWinds Orion Platform before 2020.2.5 allows stored XSS attacks by an administrator on the Customize View page.
Published 2021-03-26 · Modified
4.8EPSS 0.007